From past 1 year we are working on K8S environment where each user has the access to all namespaces. But as we are introducing new applications in cluster it is important to grant only required access to a user .
We have few services which runs in a namespace e.g. ABC. As there were no restrictions users were able to port forward the service and access it. With new restrictions now they are not able to access those services.
Is there a way to grant access to users for port-forward which will not compromise the security ?